1   1  /  1  页   跳转

中毒有日志斑竹帮忙看看

中毒有日志斑竹帮忙看看

正在运行的进程
[PID: 440][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 512][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 536][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 580][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 592][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 736][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 784][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 848][C:\Program Files\Rising\Rav\CCenter.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[PID: 868][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 908][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1036][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1304][c:\program files\rising\rfw\rfwsrv.exe]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 33>
    [c:\program files\rising\rfw\RfwRule.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 13>
    [c:\program files\rising\rfw\rfwlog.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 6>
    [c:\program files\rising\rfw\Rfwdrv.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 21>
    [c:\program files\rising\rfw\MonDrv.dll]  <rs><1, 0, 0, 4>
    [c:\program files\rising\rfw\ProcLib.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 9>
    [c:\program files\rising\rfw\mPorts.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
[PID: 1452][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 240][C:\Program Files\AMD\Cool'n'Quiet\GemServ.exe]  <Advanced Micro Devices><3, 0, 6, 0>
[PID: 324][C:\Program Files\AMD\Cool'n'Quiet\gemback.exe]  <Advanced Micro Devices><3, 1, 0, 0>
[PID: 332][C:\WINDOWS\system32\nvsvc32.exe]  <NVIDIA Corporation><6.14.10.7184>
    [C:\WINDOWS\system32\NVRSZHC.DLL]  <NVIDIA Corporation><6.14.10.7184>
[PID: 376][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\dsnpstd3.dll]  <><1, 1, 0, 1>
[PID: 1628][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3212][C:\Program Files\Rising\Rav\Ravmond.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 1, 35>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsLog.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 20>
    [C:\Program Files\Rising\Rav\HOOKSYS.dll]  <Beijing Rising Technology Co., Ltd.><18, 1, 0, 11>
    [C:\Program Files\Rising\Rav\Scanner.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 32>
    [C:\Program Files\Rising\Rav\libload.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\VirusLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\Rising\Rav\regmon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\HookWeb.dll]  <rising><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\MemMon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\expscan.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\mPorts.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
    [C:\Program Files\Rising\Rav\MailMon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
    [C:\Program Files\Rising\Rav\SpamEng.dll]  <N/A><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\engine.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 34>
    [C:\Program Files\Rising\Rav\PostTrt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 15>
    [C:\Program Files\Rising\Rav\UnExe.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\ScanExec.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\ScanEx.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\Program Files\Rising\Rav\RSUnpack.dll]  <Beijing Rising Technology Co., Ltd.><1, 0, 0, 13>
    [C:\Program Files\Rising\Rav\NvFile.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
    [C:\Program Files\Rising\Rav\ScanMac.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
    [C:\Program Files\Rising\Rav\ScanSct.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 18>
    [C:\Program Files\Rising\Rav\Unpacker.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\ExtOLE.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\RsStore.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\ScanNet.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 2008][C:\Program Files\Rising\Rav\RavStub.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[PID: 3884][C:\WINDOWS\system32\wscntfy.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll]  <><1, 3, 0, 0>
[PID: 2200][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  <><2, 0, 7, 1024>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll]  <><1, 3, 0, 0>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll]  <N/A><N/A>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll]  <><2, 0, 4, 1030>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll]  < ><2, 0, 1, 1007>
    [C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll]  <Adobe Systems Incorporated><6.0.1.2003110300>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\PROGRA~1\sina\UC\UCIdleHook.dll]  <北京新浪信息技术有限公司><1, 0, 1, 0>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\ywiper.dll]  <N/A><1, 0, 1, 1014>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\nvcpl.dll]  <NVIDIA Corporation><6.14.10.7184>
    [C:\WINDOWS\system32\NVRSZHC.DLL]  <NVIDIA Corporation><6.14.10.7184>
    [C:\WINDOWS\system32\nvshell.dll]  <NVIDIA Corporation><6.14.10.10035>
    [C:\WINDOWS\system32\iScreensaver.dll]  <N/A><N/A>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll]  <Yahoo! China><1, 1, 3, 1035>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll]  <Yahoo!><2, 1, 8, 1048>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL]  <><1, 2, 7, 1006>
    [C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX]  <N/A><N/A>
    [C:\WINDOWS\DOWNLO~1\BaiDuBar.dll]  <><2, 0, 0, 0>
[PID: 3988][C:\Program Files\联想\联想标准功能键盘\SkDaemond.exe]  <联想><1, 0, 0, 1>
    [C:\Program Files\联想\联想标准功能键盘\Ctrdev.dll]  <-><1, 0, 0, 0>
    [C:\Program Files\联想\联想标准功能键盘\SKUtil.DLL]  <Silitek Corp.><1, 0, 7, 0>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  <><2, 0, 7, 1024>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll]  <><1, 3, 0, 0>
[PID: 3996][C:\Program Files\lenovo\StateChange\QuakeII.exe]  <联想><1.0.0.1>
    [C:\Program Files\lenovo\StateChange\QuakeII.dll]  <http://www.lenovo.com><2.0>
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  <><2, 0, 7, 1024>
    [C:\Flash7.ocx]  <Macromedia, Inc.><7,0,14,0>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll]  <><1, 3, 0, 0>
    [C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll]  <N/A><N/A>
最后编辑2006-09-15 22:32:28
分享到:
gototop
 

斑竹不好意思啊,没发过这些多的内容所以发出好几个主题了,见谅
[PID: 1488][C:\WINDOWS\SOUNDMAN.EXE] <Realtek Semiconductor Corp.><5.1.0.27>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 2556][C:\WINDOWS\system32\RUNDLL32.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\NvMcTray.dll] <NVIDIA Corporation><6.14.10.7184>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.7184>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 3708][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 4012][C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe] < ><2, 0, 0, 1002>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll] <><2, 0, 4, 1030>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] < ><2, 0, 1, 1007>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Ynotifier.dll] <><1, 0, 0, 5>
[PID: 4016][C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe] <Yahoo!><1, 0, 1, 1001>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAssecblk.dll] <Yahoo><1, 0, 2, 1002>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yMenuInfo.dll] <Yahoo><1, 0, 0, 2>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yIEAngel.dll] <Yahoo><1, 0, 1, 1001>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAsMenu.dll] <Yahoo><1, 0, 1, 1006>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 3324][C:\WINDOWS\vsnpstd3.exe] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 3328][c:\program files\rising\rfw\RfwMain.exe] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 52>
[c:\program files\rising\rfw\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[c:\program files\rising\rfw\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[c:\program files\rising\rfw\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll] <N/A><N/A>
[C:\PROGRA~1\sina\UC\UCIdleHook.dll] <北京新浪信息技术有限公司><1, 0, 1, 0>
[PID: 3288][C:\Program Files\Rising\Rav\Ravmon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 33>
[C:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 26>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll] <N/A><N/A>
[C:\PROGRA~1\sina\UC\UCIdleHook.dll] <北京新浪信息技术有限公司><1, 0, 1, 0>
[PID: 3224][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 2884][C:\Program Files\VIA\RAID\raid_tool.exe] <VIA Technologies><4, 0, 4, 0>
[C:\Program Files\VIA\RAID\drvInterface.dll] <VIA><4, 0, 4, 0>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 3972][C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe] <Stardock><v1.11.517u>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\CrashRpt.dll] <><3.0.2.2>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\zlib.dll] <N/A><1.1.3>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ODImg.dll] <N/A><N/A>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll] <N/A><N/A>
[C:\PROGRA~1\sina\UC\UCIdleHook.dll] <北京新浪信息技术有限公司><1, 0, 1, 0>
[PID: 180][C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe] <Y'z@Home><1, 3, 0, 0>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\Languages\English.lang] < ><1, 0, 0, 0>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[PID: 2316][C:\Program Files\Tencent\Q\TIMPlatform.exe] <tencent><0, 3, 1, 8>
[C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\DockShellHook.dll] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <><2, 0, 7, 1024>
[C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll] <><1, 3, 0, 0>
[C:\Program Files\Tencent\Q\TIMProxy.dll] <tencent><0, 3, 2, 4>
[PID: 1208][C:\PROGRA~1\sina\UC\uc.exe] <北京新浪信息技术有限公司><4.5.0.620>
[C:\PROGRA~1\sina\UC\vcl60.bpl] <Borland Software Corporation><6.0.6.240>
[C:\PROGRA~1\sina\UC\rtl60.bpl] <Borland Software Corporation><6.0.6.243>
[C:\PROGRA~1\sina\UC\ucavatar.bpl] <><1.0.0.0>

gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT